Has anyone here got guidelines or even an information policy regarding the taking of PII (personally identifiable information) off site, e.g. a teacher taking details the new intake to a seminar or conference.
I recently went to set up a laptop for a HoY who was going to conference and sat on a drive was an Excel file freshly pumped out of SIMS with *full* details of our year 8 – address, parent contact details d.o.b. etc
Not very satisfactory…..
I’m currently working on a security policy – aup, email, passwords etc – and thought it’d be prudent to at least have some working guidelines regarding this area.
Any advice, sample policies or comments would be appreciated